VYPR

rpm package

opensuse/mcphost&distro=openSUSE Leap 16.0

pkg:rpm/opensuse/mcphost&distro=openSUSE%20Leap%2016.0

Vulnerabilities (22)

  • CVE-2026-33814HigMay 7, 2026
    affected < 0.34.0-160000.2.1fixed 0.34.0-160000.2.1

    When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it receives a SETTINGS_MAX_FRAME_SIZE with a value of 0.

  • CVE-2026-5160MedApr 15, 2026
    affected < 0.34.0-160000.3.1fixed 0.34.0-160000.3.1

    Versions of the package github.com/yuin/goldmark/renderer/html before 1.7.17 are vulnerable to Cross-site Scripting (XSS) due to improper ordering of URL validation and normalization. The renderer validates link destinations using a prefix-based check (IsDangerousURL) before reso

Page 2 of 2